<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Capability Maturity Model on Bill Brown:Thoughts and Reference Material Online</title><link>https://www.billbrown.info/tags/capability-maturity-model/</link><description>Recent content in Capability Maturity Model on Bill Brown:Thoughts and Reference Material Online</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>BillBrown.info</copyright><lastBuildDate>Fri, 19 Jun 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://www.billbrown.info/tags/capability-maturity-model/index.xml" rel="self" type="application/rss+xml"/><item><title>Comparing BSIMM and SAMM Software Security Models</title><link>https://www.billbrown.info/post/comparing-bsimm-and-samm-software-security-models/</link><pubDate>Fri, 19 Jun 2026 00:00:00 +0000</pubDate><guid>https://www.billbrown.info/post/comparing-bsimm-and-samm-software-security-models/</guid><description>
&lt;!-- SOURCE: ISSC662/forum7/Brown_Week_7_Research_Paper.docx --&gt;
&lt;h2 id="comparing-bsimm-and-samm-software-security-models"&gt;Comparing BSIMM and SAMM Software Security Models&lt;/h2&gt;
&lt;p&gt;The role of the information assurance security program as described by Sadiku, Alam, &amp;amp; Musa (2017) is the practice of protecting and defending information systems by ensuring their availability, confidentiality, integrity, authentication, and non-repudiation. Information assurance is increasing in importance as threats abound in the connected and distributed information sharing networking and information systems. Many organizations do not know how mature there information assurance and security program, process and the procedure is. Implementing an Information Security Assurance Capability Maturity Model (ISA-CCM) can assist the organization in maturing the information assurance and security program as described by Security Horizon. (2012). The Capability Maturity Model (CMM) does not assist an organization in how things are not operating correctly but provides a roadmap for the organization to change the culture as Krebs (2015) points out.&lt;/p&gt;</description></item><item><title>Applying the ISA-CMM: A Cloud E-Store Case Study</title><link>https://www.billbrown.info/post/applying-the-isa-cmm-a-cloud-e-store-case-study/</link><pubDate>Thu, 18 Jun 2026 00:00:00 +0000</pubDate><guid>https://www.billbrown.info/post/applying-the-isa-cmm-a-cloud-e-store-case-study/</guid><description>
&lt;!-- SOURCE: ISSC662/forum8/Brown_Week_6_Case_Study_Outline.docx --&gt;
&lt;h2 id="applying-the-isa-cmm-a-cloud-e-store-case-study"&gt;Applying the ISA-CMM: A Cloud E-Store Case Study&lt;/h2&gt;
&lt;p&gt;Company A (CA) is a major supplier of satellite imagery to commercial, federal and defense vertical markets. The organization launched an e-commerce website on the Internet or an estore enabling customers to navigate, review and purchase satellite imagery. This applied case study is to perform an Information Security Assurance Capability Maturity Model (ISA-CMM) to improve the predictability, control, and process effective using the estore at CA as the focus. The ISA-CMM process as described by Security Horizon (2012) is a sequence of steps performed or followed to achieve a specific process. The Capability Maturity Model (CMM) is a guide to assist the company in achieving statistical process control. Process maturity shows the amount to which a detailed process is defined, managed, measured, controlled, and believed effective as described by Security Horizon (2012).&lt;/p&gt;</description></item></channel></rss>